Malware

Zusy.339055 removal tips

Malware Removal

The Zusy.339055 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.339055 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Compression (or decompression)
  • Creates RWX memory
  • A process created a hidden window
  • Attempts to remove evidence of file being downloaded from the Internet
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Zusy.339055?


File Info:

crc32: 1AB41F53
md5: e3c29c0c699e1c4e402ca79ade0cf918
name: E3C29C0C699E1C4E402CA79ADE0CF918.mlw
sha1: 59b13ff6dd5c1725f4c04cd20169c1d21a830eca
sha256: 65e2cbe1945aaab22fd92b6c4d7f5c2348a0238ee545a913ca26a9248bcf02a1
sha512: 5720a90d7cfaeaed7249a8ad511303fcc12882dae0b808f2069cdfacf49319b07ce3250f2ea8d1a4f4b41ea306db571fe65b14a46561b9a477f031a34a3aed58
ssdeep: 12288:umlJF6nMhose9aBBI2WEWeCGuYIZq9kPb+of0Lss4qQXvve/YccZ0qrrtBaRb0r:umlJXhose9aI2WEWzYsH/C/dYrt8bP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersion: 3.2.2.0
ProductVersion: 1.0.0.0
Translation: 0x0409 0x04e4

Zusy.339055 also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanGen:Variant.Zusy.339055
FireEyeGeneric.mg.e3c29c0c699e1c4e
CAT-QuickHealTrojan.Waldek
McAfeeGenericRXAA-AA!E3C29C0C699E
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGen:Variant.Zusy.339055
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Waldek.taq
AlibabaTrojan:Win32/Waldek.c0fd5c9b
ViRobotTrojan.Win32.Z.Zusy.1207296.G
TencentWin32.Trojan.Waldek.Akyk
Ad-AwareGen:Variant.Zusy.339055
EmsisoftGen:Variant.Zusy.339055 (B)
F-SecureTrojan.TR/Waldek.ssaww
DrWebBackDoor.Wirenet.144
InvinceaTroj/Agent-AJFK
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
SophosTroj/Agent-AJFK
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Waldek.era
AviraTR/Waldek.ssaww
Antiy-AVLTrojan/Win32.Waldek
MicrosoftTrojan:Win32/Ymacco.AA65
ArcabitTrojan.Zusy.D52C6F
ZoneAlarmTrojan.Win32.Waldek.taq
GDataGen:Variant.Zusy.339055
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Waldek.C1573357
BitDefenderThetaGen:NN.ZelphiF.34634.jH0@ayi3K!gO
ALYacGen:Variant.Zusy.339055
MAXmalware (ai score=83)
VBA32TScope.Trojan.Delf
PandaGeneric Suspicious
ESET-NOD32Win32/Spy.Weecnaw.A
TrendMicro-HouseCallTROJ_GEN.R002H0CKF20
RisingMalware.FakePDF@CV!1.A24E (CLASSIC)
YandexTrojan.GenAsa!HSMOBLF0H7s
IkarusBackdoor.Win32.Hupigon
FortinetW32/Agent.AJFK!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.077

How to remove Zusy.339055?

Zusy.339055 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment